FREE ACCESS
5,000–10,000 jobs/day
See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Infrastructure as Code Engineer
Vesta Software GroupInfrastructure as Code Engineer managing AWS infrastructure for Jonas Fintech. Auditing, designing, and building Terraform codebase and CI/CD pipelines.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates extensive hands-on experience with Terraform for enterprise-level infrastructure as code, alongside deep knowledge of AWS services and compliance frameworks. Capable of designing and implementing CI/CD pipelines while ensuring security and audit trails in infrastructure workflows.
Highest-signal resume keywords
Terraform Module DesignAWS Services (EC2, VPC, IAM, RDS/Aurora, ECS/EKS, Lambda, ELB, S3)CI/CD Pipeline Development (GitHub Actions, GitLab CI, Jenkins, CircleCI)IaC Security and Compliance Scanning (Checkov, tfsec)Training and Mentoring Engineering Teams
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
TerraformAWSCI/CDPythonBashIaC SecurityCompliance ScanningAudit TrailsChange ControlEphemeral Environments
Soft Skills
Strong Written Documentation SkillsTeaching AbilityCollaborationMentoring
Tools & Technologies
GitHub ActionsGitLab CIJenkinsCircleCIS3DynamoDB
Certifications & Qualifications
ISO 27001Cyber Essentials Plus
Industry Keywords
Infrastructure as CodeBrownfield MigrationChange ControlData HandlingUK Compliance Regimes
Tech Stack
Tools & technologiesAWSDynamoDBEC2JenkinsPythonTerraform
About the role
Key responsibilities & impact- Audit our existing AWS environment, including the current admin web application, and assess what should be preserved, wrapped or retired as part of the target design
- Design and implement a modular, reusable Terraform codebase covering our core AWS infrastructure (compute, networking, storage, IAM and managed services), replacing manual/console-driven provisioning and the parts of the existing admin tool that fall outside a proper audit trail
- Set up remote state management with locking (for example S3 and DynamoDB) and encryption at rest, and define access controls so state files are never stored locally or committed to version control
- Build and integrate CI/CD pipelines that plan, validate and apply Terraform changes automatically, including automated policy and security scanning (Checkov, tfsec) on every pull request
- Establish version control workflows, module structure and environment separation (dev/staging/prod and demo) so every infrastructure change is peer reviewed, logged and attributable to a person and a pull request
- Embed our existing compliance obligations into reusable modules and pipeline checks: secure configuration and patch/update tracking relevant to Cyber Essentials Plus, access control and logging relevant to ISO 27001, and change control and data handling discipline relevant to our Bacs Approved Bureau status
- Sequence the migration plan so it does not put ISO 27001 certification at risk, given our audit falls within this contract window. You are not responsible for managing or liaising on the audit itself, but the phasing, rollback approach and documentation must be aware of that date
- Design and build an on-demand ephemeral environment capability: a full, isolated stack that a developer or QA engineer can spin up on demand, run a complete test pass against, and tear down automatically afterward
- Ensure any fixture or seed data used in ephemeral test environments is synthetic or properly masked, not copied production data, given BAB rules on customer data handling and verification
- Document architecture decisions, runbooks and module usage so the environment is maintainable after the engagement ends
- Deliver hands-on training and workshops for the internal CTO, DevOps and infrastructure team, pairing with staff, including the lead DevOps engineer who built the current admin tool, on real migration work
- Define a phased migration plan that brings existing infrastructure under code without service disruption, prioritising the highest risk manual and unaudited changes first
- Produce a transition and handoff plan and knowledge transfer materials ahead of contract end, with a clear list of what the internal team owns going forward
Requirements
What you’ll need- Proven hands-on Terraform experience at an enterprise level: module design, state management, workspaces and multi-environment patterns, not just tutorial-level familiarity
- Deep working knowledge of AWS services: EC2, VPC, IAM, RDS/Aurora, ECS/EKS, Lambda, ELB, S3
- Experience building CI/CD pipelines for infrastructure (GitHub Actions, GitLab CI, Jenkins or CircleCI)
- Experience designing ephemeral/on-demand environments (PR- or job-triggered stack creation and teardown, database seeding from masked snapshots or synthetic fixtures, automated cost/resource cleanup)
- Scripting ability in Python and/or Bash for automation and tooling glue
- Experience with IaC security and compliance scanning tools (Checkov, tfsec or similar) and secrets management
- Experience embedding audit trails and change control evidence into infrastructure workflows, able to speak concretely to how Terraform plus CI/CD produces the traceability an unaudited admin script cannot
- Working familiarity with UK compliance regimes relevant to us: ISO 27001 controls (access control, logging, risk treatment), Cyber Essentials Plus control areas (secure configuration, patch management, access control), and Bacs Approved Bureau requirements around change control and data handling
- Demonstrated experience training, mentoring or upskilling engineering teams; teaching ability is a hard requirement here, not a nice to have
- Experience leading or contributing to a brownfield migration (existing manual/bespoke automation to IaC), including the judgement to assess and diplomatically integrate with tooling already built by internal staff
- Strong written documentation skills, since your output is only as valuable as what the team can run without you afterward.
Benefits
Comp & perks- 25 days annual leave plus a day for your birthday or significant celebration
- Private Health Insurance
- Life Assurance at 4x base salary
- Enhanced company pension contribution
- Personal Travel Insurance
- Access to Benefiz benefits platform and a range of opt-in benefits
- Electric/Hybrid Vehicle scheme and Cycle to Work scheme
- 10-day rolling sick plan including extended illness pay
- EAP and Mental Health First Aider support